IOC Radar Logo
IOCRadar
IOC Radar Logo
IOCRadar

6bb2e0e349d477141dc382b68b64e351

Suspicious Hash
37.5%
SIGNAL STRENGTHQuiet
FIRST SEEN2025-03-23 10:06:47
LAST SEEN2025-04-06 15:34:37
CATEGORY
malware
shadowpad ransomware attack
supply chain attack
region spesific attack(europe)
software vulnerability
software supply chain attack leading to ransomware and backdoor deployment
MITRE
T1204 - User Execution
T1082 - System Information Discovery
T1071.001 - Web Protocol
T1499.002 - Endpoint DoS
T1499.003 - Network DoS
T1490 - Inhibit System Recovery
T1496 - Resource Hijacking
T1133 - External Remote Services
T1190 - Exploit Public-Facing Application
T1003 - OS Credential Dumping
TAGS
privilege escalation
malicious software
data encryption
regional security
eu cyber policies
process injection
command and control
extortion
distributed attacks
system disruption
Eye Icon
SOCRadar
AI Insight

The presence of MD5 hash 6bb2e0e349d477141dc382b68b64e351 is a critical indicator of compromise, potentially signaling the presence of the NailaoLocker or Shadowpad malware families within the environment. This is based on observed relationships within AlienVault OTX Feeds and Firehol, which associate this hash with these known ransomware and backdoor threats. Successful execution of these malware variants can lead to data encryption, exfiltration, system compromise, and significant operational disruption. The association with T1021 and T1574, indicates potential Lateral Movement and Hijack Execution Flow techniques used to spread and maintain persistence within the network. Immediate investigation and remediation are crucial to prevent further damage.

Summary

Hash Type:
md5
MD5:
-
SHA-1:
-
SHA-256:
-
Files:
-
File Type:
-

Top Classifications

Campaign:
-
Industry:
-
Country:
-
Region:
-
Threat Actors:
-
Malware:
-

Feed Sources

Feed Source
Count
Date
AlienVault Ransomware-Firehol
2
2025-03-25
AlienVault OTX Feeds
3
2025-04-06

Threat Activity Timeline

Last 24 hours
Dormant
Last 7 Days
Dormant
Last Month
Minimal Activity
Last 3 Months
Minimal Activity
Extended Threat Intelligence
Free Trial

Stay ahead with proactive cyber threat warnings

Discover how SOCRadar's all-in-one platform can help protect your digital assets with extended threat intelligence, digital risk protection, and attack surface management.